[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f96ys5Z_uPIbTqglWO8KpuvZ562ze72QK0b0FOkCujJ8":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":37,"analysis":139,"fingerprints":579},"xbooster-social-icons-with-counter","xBooster Social Icons with Counter","1.0","acbaltaci","https:\u002F\u002Fprofiles.wordpress.org\u002Facbaltaci\u002F","\u003Cp>Have you met xBooster?\u003C\u002Fp>\n\u003Cp>It made to boost your WordPress site’s social network functionality and look ! WordPress 3.8 Compatible!\u003C\u002Fp>\n\u003Cp>Unlimited social profiles!\u003C\u002Fp>\n\u003Cp>Yes! You can create unlimited number of social networks. \u003Ca href=\"http:\u002F\u002Fcodecanyon.net\u002Fitem\u002Fxbooster-social-plugin\u002F6469816?ref=acbaltaci\" rel=\"nofollow ugc\">xBooster full edition\u003C\u002Fa> comes with 15 most popular Social Networks :\u003C\u002Fp>\n\u003Cp>Blogger\u003Cbr \u002F>\nDelicious\u003Cbr \u002F>\nDigg\u003Cbr \u002F>\nFacebook\u003Cbr \u002F>\nFlickr\u003Cbr \u002F>\nGoogle Plus\u003Cbr \u002F>\nInstapaper\u003Cbr \u002F>\nLinkedIn\u003Cbr \u002F>\nPinterest\u003Cbr \u002F>\nReddit\u003Cbr \u002F>\nStumbleupon\u003Cbr \u002F>\nTumblr\u003Cbr \u002F>\nTwitter\u003Cbr \u002F>\nVimeo\u003Cbr \u002F>\nYoutube\u003C\u002Fp>\n\u003Cp>This one just with Facebook and Twitter\u003C\u002Fp>\n\u003Cp>xBooster Social Plugin helps you to manage your social networks.\u003C\u002Fp>\n\u003Cp>Take over the control of the social networks on your website!\u003C\u002Fp>\n\u003Cp>Take a look to the demo of \u003Ca href=\"http:\u002F\u002Fallthemesnulled.com\" rel=\"nofollow ugc\">xBooster Social Plugin\u003C\u002Fa>.\u003C\u002Fp>\n","xBooster social icons with counter is providing, icons for social network sharing and social profile links as widget, shortcode and autoplacement in c &hellip;",10,2551,90,2,"2014-01-05T09:38:00.000Z","3.7.41","3.0.1","",[20,21,22,23,24],"social-network","social-network-sharing","social-networking","social-profiles","xbooster","http:\u002F\u002Fwww.allthemesnulled.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fxbooster-social-icons-with-counter.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":33,"avg_security_score":27,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},20,30,84,"2026-04-04T16:53:48.968Z",[38,59,79,97,118],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":48,"num_ratings":49,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":53,"tags":54,"homepage":56,"download_link":57,"security_score":58,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"simple-social-icons","Simple Social Icons","4.0.0","OsomPress","https:\u002F\u002Fprofiles.wordpress.org\u002Fosompress\u002F","\u003Cp>Simple Social Icons is an easy to use, customizable way to display icons that link visitors to your various social profiles. You can choose which profiles to link to, customize the color and size of your icons, and align them to the left, center, or right.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Two Ways to Use Social Icons:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>\u003Cstrong>Widget (WordPress 4.0+):\u003C\u002Fstrong> The traditional widget works on all supported WordPress versions. Simply drag the “Simple Social Icons” widget into any widget area and configure it from the widget form. All available icons are accessible through the widget.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Block Variations (WordPress 6.9+):\u003C\u002Fstrong> On WordPress 6.9+, this plugin extends the core Social Icons block with additional icon variations. These icons automatically appear when adding a Social Icons block in the block editor. Block variations only add icons that are not already available in WordPress core, so you get the best of both worlds: core icons plus these additional options.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cstrong>Important:\u003C\u002Fstrong> If you’re currently using the widget, nothing changes for you. The widget continues to work exactly as before on all WordPress versions. Block variations are an additional feature that only activates on WordPress 6.9+ and doesn’t affect existing widget functionality.\u003C\u002Fp>\n\u003Cp>*Note: The simple_social_default_glyphs filter has been deprecated from this plugin.\u003C\u002Fp>\n","This plugin provides two ways to display social icons: a traditional widget (available on all WordPress versions) and block variations for the core So &hellip;",100000,3241683,86,91,"2025-12-16T12:19:00.000Z","6.9.4","4.0","7.4",[55,22,23],"social-media","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsimple-social-icons\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsimple-social-icons.4.0.0.zip",100,{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":67,"downloaded":68,"rating":69,"num_ratings":70,"last_updated":71,"tested_up_to":72,"requires_at_least":73,"requires_php":18,"tags":74,"homepage":77,"download_link":78,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"lightweight-social-icons","Lightweight Social Icons","1.1","Tom","https:\u002F\u002Fprofiles.wordpress.org\u002Fedge22\u002F","\u003Cp>Lightweight Social Icons is an easy to use, lightweight social icon widget which lets you display your favorite social profile icons.\u003C\u002Fp>\n\u003Cp>The icons use an icon font, meaning you can choose the size, border radius (roundess), color and hover color of your icons!\u003C\u002Fp>\n\u003Cp>Check out GeneratePress, our awesome WordPress theme! (https:\u002F\u002Fwordpress.org\u002Fthemes\u002Fgeneratepress)\u003C\u002Fp>\n\u003Ch4>Features include:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Choose your own order\u003C\u002Fli>\n\u003Cli>Icon size\u003C\u002Fli>\n\u003Cli>Border radius\u003C\u002Fli>\n\u003Cli>Background color\u003C\u002Fli>\n\u003Cli>Text\u002Ficon color\u003C\u002Fli>\n\u003Cli>Background color on hover\u003C\u002Fli>\n\u003Cli>Text\u002Ficon color on hover\u003C\u002Fli>\n\u003Cli>Open links in new window\u003C\u002Fli>\n\u003Cli>Enable\u002Fdisable tooltips\u003C\u002Fli>\n\u003Cli>Alignment of icons\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Included icons:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Facebook\u003C\u002Fli>\n\u003Cli>Twitter\u003C\u002Fli>\n\u003Cli>Google+\u003C\u002Fli>\n\u003Cli>Instagram\u003C\u002Fli>\n\u003Cli>LinkedIn\u003C\u002Fli>\n\u003Cli>Pinterest\u003C\u002Fli>\n\u003Cli>Flickr\u003C\u002Fli>\n\u003Cli>Email\u003C\u002Fli>\n\u003Cli>RSS\u003C\u002Fli>\n\u003Cli>Stumbleupon\u003C\u002Fli>\n\u003Cli>Tumblr\u003C\u002Fli>\n\u003Cli>Vimeo\u003C\u002Fli>\n\u003Cli>YouTube\u003C\u002Fli>\n\u003Cli>Github\u003C\u002Fli>\n\u003Cli>Soundcloud\u003C\u002Fli>\n\u003Cli>DeviantArt\u003C\u002Fli>\n\u003Cli>Phone\u003C\u002Fli>\n\u003Cli>Skype\u003C\u002Fli>\n\u003Cli>Dribbble\u003C\u002Fli>\n\u003Cli>Foursquare\u003C\u002Fli>\n\u003Cli>Reddit\u003C\u002Fli>\n\u003Cli>Spotify\u003C\u002Fli>\n\u003Cli>Digg\u003C\u002Fli>\n\u003Cli>Vine\u003C\u002Fli>\n\u003Cli>Codepen\u003C\u002Fli>\n\u003Cli>Delicious\u003C\u002Fli>\n\u003Cli>JSFiddle\u003C\u002Fli>\n\u003Cli>Stack Overflow\u003C\u002Fli>\n\u003Cli>WordPress\u003C\u002Fli>\n\u003Cli>Dropbox\u003C\u002Fli>\n\u003Cli>Steam\u003C\u002Fli>\n\u003Cli>Behance\u003C\u002Fli>\n\u003Cli>iTunes\u003C\u002Fli>\n\u003Cli>Yelp\u003C\u002Fli>\n\u003Cli>500px\u003C\u002Fli>\n\u003Cli>AngelList\u003C\u002Fli>\n\u003Cli>Blog Lovin’\u003C\u002Fli>\n\u003Cli>Paper Plane (Newsletter)\u003C\u002Fli>\n\u003Cli>VK\u003C\u002Fli>\n\u003Cli>Xing\u003C\u002Fli>\n\u003Cli>Bandcamp\u003C\u002Fli>\n\u003Cli>BitBucket\u003C\u002Fli>\n\u003Cli>Snapchat\u003C\u002Fli>\n\u003Cli>Trip Advisor\u003C\u002Fli>\n\u003Cli>Houzz\u003C\u002Fli>\n\u003Cli>Mixcloud\u003C\u002Fli>\n\u003Cli>Last.fm\u003C\u002Fli>\n\u003C\u002Ful>\n","Looking to add simple social icons to your widget areas? Choose the size and color of your icons, and then choose from 47 different social profiles.",30000,464772,94,63,"2020-03-18T17:14:00.000Z","5.4.19","4.5",[75,76,55,22,23],"social-icon-widget","social-icons","http:\u002F\u002Fgeneratepress.com\u002Flightweight-social-icons","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flightweight-social-icons.1.1.zip",{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":87,"downloaded":88,"rating":48,"num_ratings":89,"last_updated":90,"tested_up_to":91,"requires_at_least":92,"requires_php":18,"tags":93,"homepage":95,"download_link":96,"security_score":58,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"socials-ignited","Socials Ignited","2.0.0","Anastis Sourgoutsidis","https:\u002F\u002Fprofiles.wordpress.org\u002Fanastis\u002F","\u003Cp>Brought to you by the \u003Ca href=\"https:\u002F\u002Fwww.cssigniter.com\u002F\" title=\"Premium WordPress Themes\" rel=\"nofollow ugc\">CSSIgniter\u003C\u002Fa> folks, the Socials Ignited\u003Cbr \u002F>\nplugin allows you to display and link icons on your website of more than 50 social networks, just by dragging a widget.\u003C\u002Fp>\n\u003Cp>The plugin supports all FontAwesome 5.x free icons providing you with hundreds of options to display your social profiles, contact methods and more.\u003C\u002Fp>\n\u003Cp>A preconfigured list of the most popular social networks can be found under Customize -> Socials Ignited for you to fill in. Alternatively you can create custom sets of icons right on the widget.\u003C\u002Fp>\n","The Socials Ignited plugin gives you a widget, allowing you to display and link icons on your website of more than 50 social networks.",2000,84550,4,"2025-04-25T13:09:00.000Z","6.8.5","5.2",[76,55,22,23,94],"social-widgets","https:\u002F\u002Fwww.cssigniter.com\u002Fsocials-ignited\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsocials-ignited.2.0.0.zip",{"slug":98,"name":99,"version":100,"author":101,"author_profile":102,"description":103,"short_description":104,"active_installs":87,"downloaded":105,"rating":106,"num_ratings":107,"last_updated":108,"tested_up_to":109,"requires_at_least":110,"requires_php":111,"tags":112,"homepage":116,"download_link":117,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"the-social-links","The Social Links","2.0.5","seagyn","https:\u002F\u002Fprofiles.wordpress.org\u002Fseags\u002F","\u003Cp>\u003Cstrong>Note: Development for The Social Links happens on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fflickerleap\u002Fthe-social-links\" rel=\"nofollow ugc\">Github\u003C\u002Fa>. Please submit an issue there.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>The Social Links plugin adds a widget and shortcode to your WordPress website allowing you to display icons linking to your social profiles. The new version includes the following social networks:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Telegram\u003C\u002Fli>\n\u003Cli>Google+\u003C\u002Fli>\n\u003Cli>Facebook\u003C\u002Fli>\n\u003Cli>Twitter\u003C\u002Fli>\n\u003Cli>Linkedin\u003C\u002Fli>\n\u003Cli>YouTube\u003C\u002Fli>\n\u003Cli>Instagram\u003C\u002Fli>\n\u003Cli>Pinterest\u003C\u002Fli>\n\u003Cli>Behance\u003C\u002Fli>\n\u003Cli>Bitcoin\u003C\u002Fli>\n\u003Cli>Delicious\u003C\u002Fli>\n\u003Cli>DeviantArt\u003C\u002Fli>\n\u003Cli>Digg\u003C\u002Fli>\n\u003Cli>Dribble\u003C\u002Fli>\n\u003Cli>Flickr\u003C\u002Fli>\n\u003Cli>Foursquare\u003C\u002Fli>\n\u003Cli>GitHub\u003C\u002Fli>\n\u003Cli>LastFM\u003C\u002Fli>\n\u003Cli>Medium\u003C\u002Fli>\n\u003Cli>Skype\u003C\u002Fli>\n\u003Cli>Soundcloud\u003C\u002Fli>\n\u003Cli>Spotify\u003C\u002Fli>\n\u003Cli>Tumblr\u003C\u002Fli>\n\u003Cli>Vine\u003C\u002Fli>\n\u003Cli>WordPress\u003C\u002Fli>\n\u003Cli>Telegram\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>We’ve also added support for a \u003Cstrong>shortcode\u003C\u002Fstrong> (\u003Ccode>[the-social-links]\u003C\u002Fcode>) for use in WordPress posts and pages and a \u003Cstrong>custom template tag\u003C\u002Fstrong> (\u003Ccode>\u003C?php the_social_links();?>\u003C\u002Fcode>) for use in template files.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>The Social Links is translation ready!\u003C\u002Fstrong>\u003C\u002Fp>\n","The Social Links plugin adds a widget and shortcode to your WordPress website allowing you to display icons linking to your social profiles.",138326,88,7,"2021-11-09T21:20:00.000Z","5.8.13","4.2","5.6",[113,114,115,22],"social","social-bookmarks","social-links","https:\u002F\u002Fgithub.com\u002Fseagyn\u002Fthe-social-links","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fthe-social-links.2.0.5.zip",{"slug":119,"name":120,"version":121,"author":122,"author_profile":123,"description":124,"short_description":125,"active_installs":126,"downloaded":127,"rating":128,"num_ratings":129,"last_updated":130,"tested_up_to":72,"requires_at_least":131,"requires_php":18,"tags":132,"homepage":137,"download_link":138,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"buddypress-edit-activity","BuddyPress Edit Activity","1.1.1","Syed Balkhi","https:\u002F\u002Fprofiles.wordpress.org\u002Fsmub\u002F","\u003Cp>Let your BuddyPress members edit their activity posts and replies on the front-end of the site. You can even set a time limit for how long activity posts should remain editable.\u003C\u002Fp>\n\u003Cp>Just activate the plugin, and every activity post and reply will become editable, styled automatically by BuddyPress to fit with your theme.\u003C\u002Fp>\n","BuddyPress Edit Activity allows your members to edit their activity posts on the front-end of your BuddyPress-powered site.",900,75058,92,17,"2020-04-23T13:56:00.000Z","3.8",[133,134,135,136,22],"activity","buddypress","messaging","profiles","https:\u002F\u002Fwww.buddyboss.com\u002Fproduct\u002Fbuddypress-edit-activity\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-edit-activity.1.1.1.zip",{"attackSurface":140,"codeSignals":205,"taintFlows":469,"riskAssessment":565,"analyzedAt":578},{"hooks":141,"ajaxHandlers":179,"restRoutes":194,"shortcodes":195,"cronEvents":204,"entryPointCount":193,"unprotectedCount":28},[142,147,152,156,159,164,166,171,175],{"type":143,"name":144,"callback":145,"file":146,"line":14},"filter","the_content","xbooster_the_content","inc\\content-render-functions.php",{"type":148,"name":149,"callback":150,"file":151,"line":14},"action","admin_enqueue_scripts","xbooster_load_scripts","inc\\script-style-loader.php",{"type":148,"name":153,"callback":154,"file":151,"line":155},"wp_enqueue_scripts","xbooster_frontend_scripts",3,{"type":148,"name":157,"callback":158,"file":151,"line":89},"admin_print_styles","xbooster_load_css_admin",{"type":148,"name":160,"callback":161,"file":162,"line":163},"widgets_init","anonymous","inc\\widget-functions.php",5,{"type":148,"name":160,"callback":161,"file":162,"line":165},6,{"type":148,"name":167,"callback":168,"file":169,"line":170},"plugins_loaded","get_object","xbooster-social-icons-with-counter.php",14,{"type":148,"name":172,"callback":173,"file":169,"line":174},"init","xbooster_social_plugin_init",41,{"type":148,"name":176,"callback":177,"file":169,"line":178},"admin_menu","add_menu_entry",76,[180,185,186,188,189,191],{"action":181,"nopriv":182,"callback":181,"hasNonce":183,"hasCapCheck":182,"file":184,"line":155},"xbooster_ajax_follow",false,true,"inc\\ajax-functions.php",{"action":181,"nopriv":183,"callback":181,"hasNonce":183,"hasCapCheck":182,"file":184,"line":89},{"action":187,"nopriv":182,"callback":187,"hasNonce":183,"hasCapCheck":182,"file":184,"line":163},"xbooster_ajax_share",{"action":187,"nopriv":183,"callback":187,"hasNonce":183,"hasCapCheck":182,"file":184,"line":165},{"action":190,"nopriv":182,"callback":190,"hasNonce":183,"hasCapCheck":182,"file":184,"line":107},"xbooster_share_sort",{"action":192,"nopriv":182,"callback":192,"hasNonce":183,"hasCapCheck":182,"file":184,"line":193},"xbooster_profile_sort",8,[],[196,200],{"tag":197,"callback":198,"file":169,"line":199},"xBooster_Social_Profiles","xbooster_shortcode_social_profiles",37,{"tag":201,"callback":202,"file":169,"line":203},"xBooster_Social_Share","xbooster_shortcode_social_share",38,[],{"dangerousFunctions":206,"sqlUsage":212,"outputEscaping":214,"fileOperations":28,"externalRequests":28,"nonceChecks":89,"capabilityChecks":28,"bundledLibraries":464},[207,210],{"fn":208,"file":162,"line":163,"context":209},"create_function","add_action( 'widgets_init', create_function('', 'return register_widget(\"Xbooster_Social_Profiles_Wi",{"fn":208,"file":162,"line":165,"context":211},"add_action( 'widgets_init', create_function('', 'return register_widget(\"Xbooster_Social_Share_Widge",{"prepared":28,"raw":28,"locations":213},[],{"escaped":193,"rawEcho":215,"locations":216},148,[217,221,223,225,226,228,229,231,233,235,237,239,241,243,245,247,249,251,252,254,255,257,259,261,263,265,268,270,272,274,276,278,280,282,284,286,288,290,292,294,296,298,300,302,304,306,308,310,312,314,316,318,320,322,323,324,325,326,328,330,331,333,334,337,338,339,340,341,343,344,346,348,350,353,355,357,359,360,362,363,364,365,366,368,370,371,373,374,375,377,378,379,381,382,383,385,387,388,391,393,395,397,399,401,402,403,404,405,407,408,410,411,412,414,416,418,420,422,423,424,426,427,428,429,431,432,433,434,436,438,439,440,442,443,445,446,447,449,450,451,452,454,456,457,458,460,462,463],{"file":218,"line":219,"context":220},"admin\\admin-dashboard.php",15,"raw output",{"file":218,"line":222,"context":220},43,{"file":218,"line":224,"context":220},44,{"file":218,"line":224,"context":220},{"file":218,"line":227,"context":220},45,{"file":218,"line":227,"context":220},{"file":218,"line":230,"context":220},46,{"file":218,"line":232,"context":220},49,{"file":218,"line":234,"context":220},51,{"file":218,"line":236,"context":220},55,{"file":218,"line":238,"context":220},58,{"file":218,"line":240,"context":220},61,{"file":218,"line":242,"context":220},65,{"file":218,"line":244,"context":220},66,{"file":218,"line":246,"context":220},99,{"file":218,"line":248,"context":220},126,{"file":218,"line":250,"context":220},127,{"file":218,"line":250,"context":220},{"file":218,"line":253,"context":220},128,{"file":218,"line":253,"context":220},{"file":218,"line":256,"context":220},129,{"file":218,"line":258,"context":220},132,{"file":218,"line":260,"context":220},135,{"file":218,"line":262,"context":220},139,{"file":218,"line":264,"context":220},140,{"file":266,"line":267,"context":220},"admin\\admin-display-options.php",255,{"file":266,"line":269,"context":220},260,{"file":266,"line":271,"context":220},265,{"file":266,"line":273,"context":220},266,{"file":266,"line":275,"context":220},267,{"file":266,"line":277,"context":220},268,{"file":266,"line":279,"context":220},269,{"file":266,"line":281,"context":220},274,{"file":266,"line":283,"context":220},279,{"file":266,"line":285,"context":220},280,{"file":266,"line":287,"context":220},281,{"file":266,"line":289,"context":220},282,{"file":266,"line":291,"context":220},288,{"file":266,"line":293,"context":220},289,{"file":266,"line":295,"context":220},297,{"file":266,"line":297,"context":220},302,{"file":266,"line":299,"context":220},303,{"file":266,"line":301,"context":220},304,{"file":266,"line":303,"context":220},305,{"file":266,"line":305,"context":220},306,{"file":266,"line":307,"context":220},311,{"file":266,"line":309,"context":220},316,{"file":266,"line":311,"context":220},317,{"file":266,"line":313,"context":220},318,{"file":266,"line":315,"context":220},319,{"file":266,"line":317,"context":220},326,{"file":266,"line":319,"context":220},327,{"file":321,"line":89,"context":220},"admin\\admin-first.php",{"file":321,"line":163,"context":220},{"file":321,"line":107,"context":220},{"file":321,"line":193,"context":220},{"file":321,"line":11,"context":220},{"file":321,"line":327,"context":220},11,{"file":321,"line":329,"context":220},13,{"file":321,"line":170,"context":220},{"file":321,"line":332,"context":220},16,{"file":321,"line":129,"context":220},{"file":335,"line":336,"context":220},"admin\\admin-sharing-stats.php",21,{"file":335,"line":222,"context":220},{"file":335,"line":222,"context":220},{"file":335,"line":222,"context":220},{"file":335,"line":69,"context":220},{"file":335,"line":342,"context":220},95,{"file":335,"line":342,"context":220},{"file":335,"line":345,"context":220},96,{"file":335,"line":347,"context":220},97,{"file":349,"line":107,"context":220},"admin\\admin-sidebar.php",{"file":351,"line":352,"context":220},"admin\\admin-social-network-profiles.php",192,{"file":351,"line":354,"context":220},217,{"file":351,"line":356,"context":220},219,{"file":351,"line":358,"context":220},220,{"file":351,"line":358,"context":220},{"file":351,"line":361,"context":220},221,{"file":351,"line":361,"context":220},{"file":351,"line":361,"context":220},{"file":351,"line":361,"context":220},{"file":351,"line":361,"context":220},{"file":351,"line":367,"context":220},225,{"file":351,"line":369,"context":220},227,{"file":351,"line":369,"context":220},{"file":351,"line":372,"context":220},228,{"file":351,"line":372,"context":220},{"file":351,"line":372,"context":220},{"file":351,"line":376,"context":220},231,{"file":351,"line":376,"context":220},{"file":351,"line":376,"context":220},{"file":351,"line":380,"context":220},232,{"file":351,"line":380,"context":220},{"file":351,"line":380,"context":220},{"file":351,"line":384,"context":220},235,{"file":351,"line":386,"context":220},263,{"file":351,"line":386,"context":220},{"file":389,"line":390,"context":220},"admin\\admin-social-sharing.php",67,{"file":389,"line":392,"context":220},69,{"file":389,"line":394,"context":220},71,{"file":389,"line":396,"context":220},107,{"file":389,"line":398,"context":220},110,{"file":389,"line":400,"context":220},111,{"file":389,"line":400,"context":220},{"file":389,"line":400,"context":220},{"file":389,"line":400,"context":220},{"file":389,"line":400,"context":220},{"file":389,"line":406,"context":220},115,{"file":389,"line":406,"context":220},{"file":389,"line":409,"context":220},116,{"file":389,"line":409,"context":220},{"file":389,"line":409,"context":220},{"file":184,"line":413,"context":220},120,{"file":184,"line":415,"context":220},168,{"file":162,"line":417,"context":220},80,{"file":162,"line":419,"context":220},102,{"file":162,"line":421,"context":220},103,{"file":162,"line":421,"context":220},{"file":162,"line":421,"context":220},{"file":162,"line":425,"context":220},106,{"file":162,"line":396,"context":220},{"file":162,"line":396,"context":220},{"file":162,"line":396,"context":220},{"file":162,"line":430,"context":220},119,{"file":162,"line":413,"context":220},{"file":162,"line":413,"context":220},{"file":162,"line":413,"context":220},{"file":162,"line":435,"context":220},133,{"file":162,"line":437,"context":220},134,{"file":162,"line":437,"context":220},{"file":162,"line":437,"context":220},{"file":162,"line":441,"context":220},247,{"file":162,"line":279,"context":220},{"file":162,"line":444,"context":220},270,{"file":162,"line":444,"context":220},{"file":162,"line":444,"context":220},{"file":162,"line":448,"context":220},273,{"file":162,"line":281,"context":220},{"file":162,"line":281,"context":220},{"file":162,"line":281,"context":220},{"file":162,"line":453,"context":220},286,{"file":162,"line":455,"context":220},287,{"file":162,"line":455,"context":220},{"file":162,"line":455,"context":220},{"file":162,"line":459,"context":220},300,{"file":162,"line":461,"context":220},301,{"file":162,"line":461,"context":220},{"file":162,"line":461,"context":220},[465],{"name":466,"version":467,"knownCves":468},"DataTables","1.9.4",[],[470,487,501,510,518,538,552],{"entryPoint":471,"graph":472,"unsanitizedCount":485,"severity":486},"\u003Cadmin-display-options> (admin\\admin-display-options.php:0)",{"nodes":473,"edges":483},[474,478],{"id":475,"type":476,"label":477,"file":266,"line":267},"n0","source","$_SERVER['REQUEST_URI']",{"id":479,"type":480,"label":481,"file":266,"line":267,"wp_function":482},"n1","sink","echo() [XSS]","echo",[484],{"from":475,"to":479,"sanitized":182},1,"low",{"entryPoint":488,"graph":489,"unsanitizedCount":155,"severity":486},"\u003Cadmin-sharing-stats> (admin\\admin-sharing-stats.php:0)",{"nodes":490,"edges":498},[491,492,493,496],{"id":475,"type":476,"label":477,"file":335,"line":336},{"id":479,"type":480,"label":481,"file":335,"line":336,"wp_function":482},{"id":494,"type":476,"label":495,"file":335,"line":327},"n2","$_POST (x2)",{"id":497,"type":480,"label":481,"file":335,"line":342,"wp_function":482},"n3",[499,500],{"from":475,"to":479,"sanitized":182},{"from":494,"to":497,"sanitized":182},{"entryPoint":502,"graph":503,"unsanitizedCount":14,"severity":486},"\u003Cadmin-social-network-profiles> (admin\\admin-social-network-profiles.php:0)",{"nodes":504,"edges":508},[505,507],{"id":475,"type":476,"label":506,"file":351,"line":358},"$_SERVER['REQUEST_URI'] (x2)",{"id":479,"type":480,"label":481,"file":351,"line":358,"wp_function":482},[509],{"from":475,"to":479,"sanitized":182},{"entryPoint":511,"graph":512,"unsanitizedCount":485,"severity":486},"\u003Cadmin-social-sharing> (admin\\admin-social-sharing.php:0)",{"nodes":513,"edges":516},[514,515],{"id":475,"type":476,"label":477,"file":389,"line":392},{"id":479,"type":480,"label":481,"file":389,"line":392,"wp_function":482},[517],{"from":475,"to":479,"sanitized":182},{"entryPoint":519,"graph":520,"unsanitizedCount":28,"severity":486},"xbooster_ajax_share (inc\\ajax-functions.php:89)",{"nodes":521,"edges":535},[522,525,529,532],{"id":475,"type":476,"label":523,"file":184,"line":524},"$_REQUEST (x2)",108,{"id":479,"type":480,"label":526,"file":184,"line":527,"wp_function":528},"update_option() [Settings Manipulation]",113,"update_option",{"id":494,"type":476,"label":530,"file":184,"line":531},"$_SERVER['HTTP_REFERER']",122,{"id":497,"type":480,"label":533,"file":184,"line":531,"wp_function":534},"header() [Header Injection]","header",[536,537],{"from":475,"to":479,"sanitized":183},{"from":494,"to":497,"sanitized":183},{"entryPoint":539,"graph":540,"unsanitizedCount":28,"severity":486},"xbooster_ajax_follow (inc\\ajax-functions.php:136)",{"nodes":541,"edges":549},[542,544,546,548],{"id":475,"type":476,"label":523,"file":184,"line":543},151,{"id":479,"type":480,"label":526,"file":184,"line":545,"wp_function":528},160,{"id":494,"type":476,"label":530,"file":184,"line":547},170,{"id":497,"type":480,"label":533,"file":184,"line":547,"wp_function":534},[550,551],{"from":475,"to":479,"sanitized":183},{"from":494,"to":497,"sanitized":183},{"entryPoint":553,"graph":554,"unsanitizedCount":28,"severity":486},"\u003Cajax-functions> (inc\\ajax-functions.php:0)",{"nodes":555,"edges":562},[556,558,559,561],{"id":475,"type":476,"label":557,"file":184,"line":524},"$_REQUEST (x4)",{"id":479,"type":480,"label":526,"file":184,"line":527,"wp_function":528},{"id":494,"type":476,"label":560,"file":184,"line":531},"$_SERVER['HTTP_REFERER'] (x2)",{"id":497,"type":480,"label":533,"file":184,"line":531,"wp_function":534},[563,564],{"from":475,"to":479,"sanitized":183},{"from":494,"to":497,"sanitized":183},{"summary":566,"deductions":567},"The 'xbooster-social-icons-with-counter' plugin version 1.0, based on the provided static analysis and vulnerability history, presents a mixed security posture.  A significant strength is the absence of known CVEs and a complete reliance on prepared statements for SQL queries, indicating good practices in database interaction. Furthermore, the total lack of REST API routes and cron events, combined with a low number of total entry points, suggests a relatively contained attack surface.  However, there are concerning signals within the code analysis. The presence of two instances of `create_function` is a critical red flag, as this is a deprecated and potentially dangerous PHP function that can lead to code execution vulnerabilities if not handled with extreme care. The extremely low percentage of properly escaped output (5%) is another major concern, as it signifies a high risk of Cross-Site Scripting (XSS) vulnerabilities across numerous output points. While the plugin implements nonce checks and capability checks on some entry points (4 and 0 respectively), the lack of capability checks on AJAX handlers is a weakness that could be exploited if an attacker can trigger these handlers.\n\nThe vulnerability history shows no recorded vulnerabilities, which is a positive indicator. However, this should not be taken as a guarantee of current security, especially given the code signals like `create_function` and poor output escaping.  The absence of past vulnerabilities might simply mean that these specific weaknesses have not been discovered or exploited yet. In conclusion, while the plugin benefits from a clean CVE record and secure SQL practices, the identified code signals, particularly the use of `create_function` and the pervasive lack of output escaping, introduce significant risks that warrant immediate attention.",[568,570,572,574,576],{"reason":569,"points":219},"Dangerous function 'create_function' used",{"reason":571,"points":11},"Low percentage of output escaping (5%)",{"reason":573,"points":155},"Bundled outdated library: DataTables v1.9.4",{"reason":575,"points":163},"Flows with unsanitized paths found (4)",{"reason":577,"points":163},"AJAX handlers without capability checks","2026-03-17T00:16:56.486Z",{"wat":580,"direct":589},{"assetPaths":581,"generatorPatterns":584,"scriptPaths":585,"versionParams":586},[582,583],"\u002Fwp-content\u002Fplugins\u002Fxbooster-social-icons-with-counter\u002Fassets\u002Fcss\u002Ffrontend.css","\u002Fwp-content\u002Fplugins\u002Fxbooster-social-icons-with-counter\u002Fassets\u002Fjs\u002Ffrontend.js",[],[583],[587,588],"xbooster-social-icons-with-counter\u002Fassets\u002Fcss\u002Ffrontend.css?ver=","xbooster-social-icons-with-counter\u002Fassets\u002Fjs\u002Ffrontend.js?ver=",{"cssClasses":590,"htmlComments":598,"htmlAttributes":599,"restEndpoints":603,"jsGlobals":605,"shortcodeOutput":606},[591,592,593,594,595,596,597],"xbsp_container","xbsp_act","xbooster_follow","xboostericon","bubble","xbooster_follow_counter","xbooster_share_counter",[],[600,601,602],"data-do","data-nonce","data-network",[604],"admin-ajax.php?action=xbooster_ajax",[],[607,608,609,610,611,612],"\u003Cul class=\"xbsp_container\">","\u003Cli class=\"xbsp_act\">\u003Cspan>","\u003Cli>\u003Ca class=\"xbooster_follow\"","\u003Cimg  class=\"xboostericon ","\u003Cli class=\"bubble\">\u003Cspan class=\"xbooster_follow_counter\">","\u003Cli class=\"bubble\">\u003Cspan class=\"xbooster_share_counter\">"]